
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@t2000/discovery
Advanced tools
Probe and validate x402 seller endpoints on Sui — 402 accepts[] / WWW-Authenticate probing plus OpenAPI paid-endpoint extraction. The discovery half of the @t2000 serve stack.
Probe and validate x402 seller endpoints on Sui — the discovery half of the
@t2000/serve stack.
probe(url) — expect a 402; reads accepts[] and
WWW-Authenticate: Payment, normalizes known-USDC amounts.fetchOpenApi / extractEndpoints — {origin}/openapi.json → paid ops.validateOpenApi — catalog contract lint.discover / check — origin-level sweeps.import { probe, extractEndpoints, validateOpenApi } from '@t2000/discovery';
Zero runtime dependencies. @t2000/serve ships a serve↔probe integration
test so the two packages cannot drift in CI.
MIT © t2000
FAQs
Probe and validate x402 seller endpoints on Sui — 402 accepts[] / WWW-Authenticate probing plus OpenAPI paid-endpoint extraction. The discovery half of the @t2000 serve stack.
The npm package @t2000/discovery receives a total of 1,806 weekly downloads. As such, @t2000/discovery popularity was classified as popular.
We found that @t2000/discovery demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.